<?php

include_once("functions/db_manipulate.php");
if (!init()) {
    redirect('login.php');
}

$link_id = connectDB();

$resultSet = mysql_query("INSERT INTO galspam(galid, userid)
                          VALUES
                                ('" . mysql_real_escape_string($_GET['cid']) . "',
                                '" . $_SESSION['id'] . "'
                                )");

redirect($_SERVER['HTTP_REFERER']);
